diff --git a/.gitea/workflows/mobsf.yml b/.gitea/workflows/mobsf.yml index e1263f0..4d0cd2d 100644 --- a/.gitea/workflows/mobsf.yml +++ b/.gitea/workflows/mobsf.yml @@ -8,18 +8,13 @@ jobs: - name: Checkout Code uses: https://github.com/actions/checkout@v4 - - name: Run MobSF Scan - run: | - # 1. Create a placeholder - echo "
No issues.
" > report.html - - # 2. POINT DIRECTLY TO SOURCE - # We map the root to /src, but tell mobsfscan to only scan /src/app/src/main - # This forces it to ignore Gradle/Wrapper files and focus on your code - docker run --rm \ - -v "${{ github.workspace }}:/src" \ - opensecurity/mobsfscan:latest \ - --html -o /src/report.html /src/app/src/main || true + # By using 'uses', Gitea handles the Docker volume mounting automatically + - name: Run mobsfscan + uses: https://github.com/MobSF/mobsfscan@main + with: + # This tells the action to scan the current directory + # We generate both HTML and JSON to be safe + args: '. --html --output report.html' - name: Upload Report to Gitea uses: https://gitea.com/actions/upload-artifact@v3